US2023012658A1PendingUtilityA1

Systems and methods for facilitating network transactions based on user authentication

Assignee: MASTERCARD INTERNATIONAL INCPriority: Oct 5, 2018Filed: Sep 22, 2022Published: Jan 19, 2023
Est. expiryOct 5, 2038(~12.2 yrs left)· nominal 20-yr term from priority
G06Q 20/34H04L 2463/102G06Q 20/40H04L 63/0861G06Q 20/40145
66
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Systems and methods are provided for facilitating network transactions based on user authentication. One example computer-implemented method includes receiving a request to authenticate a user in connection with a network interaction and identifying a device identifier (ID) specific to a card for an account indicated in the request. The method also includes transmitting, to the card based on the device ID, a challenge command for authentication of the user, whereby the card instructs the user to biometrically authenticate at the card via an on-card indicator, and receiving, from the card, a challenge question advisement including an authentication result of the user. The method then also includes, based on the authentication result of the user, responding to the request to authenticate, to a merchant plug-in (MPI) computing device, with an authentication code indicative of the authentication result.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A computer-implemented method for use in facilitating authentication of a user in connection with a network interaction, the method comprising:
 receiving, at a computing device, a request to authenticate a user in connection with a network interaction, the request including an identifier of an account specific to a user;   identifying, by the computing device, a device identifier (ID) specific to a card for the account based on the identifier of the account;   transmitting, by the computing device, to the card based on the device ID, a challenge command for authentication of the user, whereby the card instructs, via an on-card indicator, the user to biometrically authenticate at the card;   receiving, by the computing device, from the card, a challenge question advisement, the challenge question advisement including an authentication result based on a comparison between biometric data captured at the card by the user and reference biometric data included in the card; and   based on the authentication result in the challenge question advisement, responding to the request to authenticate, by the computing device, to a merchant plug-in (MPI) computing device, with an authentication code indicative of the authentication result.   
     
     
         2 . The computer-implemented method of  claim 1 , wherein the device ID includes a mobile identification number unique to a mobile network adapter of the card on a mobile network; and
 wherein transmitting the challenge command includes transmitting the challenge command, through the mobile network, to the mobile network adapter.   
     
     
         3 . The computer-implemented method of  claim 1 , further comprising transmitting a network address to the MPI computing device, in connection with the challenge question, whereby a virtual location associated with a merchant displays a message, based on the network address, to inform the user to authenticate at the card. 
     
     
         4 . The computer-implemented method of  claim 1 , wherein responding to the request to authenticate with the authentication code, to the MPI computing device, includes responding to the request to authenticate with the authentication code, to the MPI computing device, via a directory server included in a payment network. 
     
     
         5 . The computer-implemented method of  claim 4 , further comprising:
 receiving, by the computing device, via the payment network, from a merchant computing device, a request to authorize the network interaction, the request to authorize including the authentication code;   determining, by the computing device, to approve the network interaction based, at least in part, on the authentication code from the request to authorize; and   transmitting to the merchant computing device, by the computing device, via the payment network, a response to the request to authorize including an approval of the network interaction.   
     
     
         6 . The computer-implemented method of  claim 5 , wherein the computing device includes at least one of an access control server (ACS) or an issuer computing device. 
     
     
         7 . The computer-implemented method of  claim 1 , further comprising determining whether the card is a participant in on-card direct authentication; and
 wherein transmitting the challenge command includes transmitting the challenge command in response to determining the card is the participant in on-card authentication.   
     
     
         8 . A computer-implemented method for use in facilitating on-card authentication of a user in connection with an interaction, the method comprising:
 for on-card authentication of a user, in connection with an interaction to an account, receiving, at a card, via a mobile network adapter of the card, from an access control server (ACS), a challenge command for authentication of the user, the card being specific to the account and including at least a physical indicator and a fingerprint sensor;   manipulating the physical indicator on the card, as an instruction to the user to provide a fingerprint to the fingerprint sensor on the card;   capturing, at the fingerprint sensor of the card, fingerprint data from the user;   comparing, by the card, the captured fingerprint data with reference fingerprint data included in a memory of the card; and   returning, by the card, via the mobile network adapter, to the ACS, a challenge command advisement, the challenge command advisement including an authentication result for the user, based on the comparison between the captured fingerprint data and the reference fingerprint data.   
     
     
         9 . The method of  claim 8 , wherein the physical indicator includes a light-emitting diode (LED); and
 wherein manipulating the physical indicator includes toggling the LED ON/OFF at a defined interval.   
     
     
         10 . The method of  claim 8 , wherein the physical indicator includes an audible indicator. 
     
     
         11 . The method of  claim 8 , wherein manipulating the physical indicator includes manipulating, by a processor of the card, the physical indicator; and
 wherein the processor includes an EMV chip.   
     
     
         12 . The method of  claim 8 , wherein the card further includes at least one payment account credential for the account on a front side of the card; and
 wherein the indicator is included on the front side of the card.   
     
     
         13 . The method of  claim 8 , further comprising:
 transmitting, by the ACS, the challenge command to the card, in response to an authentication request from a merchant plug-in (MPI) computing device associated with a merchant involved in the interaction;   receiving, at the ACS, the challenge command advisement from the card; and   providing, by the ACS, to the MPI computing device, an authentication code based on the challenge command advisement.   
     
     
         14 . The method of  claim 13 , further comprising determining, by the ACS, that the account is a participant in on-card direct authentication; and
 in response to the account being the participant, identifying, by the ACS, the card based on a device ID assigned to the card; and   wherein transmitting the challenge command includes transmitting the challenge command to the card based on the device ID.   
     
     
         15 . The method of  claim 14 , wherein the device ID includes a mobile identification number unique to the mobile network adapter of the card on a mobile network; and
 wherein transmitting the challenge command includes transmitting the challenge command, through the mobile network.   
     
     
         16 . The method of  claim 8 , wherein the card is compliant with an ISO/IEC 7810 ID-1 standard for payment cards.

Join the waitlist — get patent alerts

Track US2023012658A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.